CVE-2021-38194

An issue was discovered in the ark-r1cs-std crate before 0.3.1 for Rust. It does not enforce any constraints in the FieldVar::mul_by_inverse method. Thus, a prover can produce a proof that is unsound but is nonetheless verified.
Configurations

Configuration 1 (hide)

cpe:2.3:a:arcworks:ark-r1cs-std:*:*:*:*:*:rust:*:*

History

No history.

Information

Published : 2021-08-08 06:15

Updated : 2024-02-28 18:28


NVD link : CVE-2021-38194

Mitre link : CVE-2021-38194

CVE.ORG link : CVE-2021-38194


JSON object : View

Products Affected

arcworks

  • ark-r1cs-std